cleantalk
Vulnerabilities and Security Researches

Event Espresso 4 Decaf – Event Registration Event Ticketing, 0d179fff144e451edfdd3cb96273a090f56f2585

Published on
Aug 16, 2021
Research Description
Event Espresso &#8211; Event Registration &amp; Ticketing Sales [event-espresso-decaf] < 4.10.14 (closed) WordPress Event Espresso 4 Decaf plugin <= 4.10.12.decaf - Cross-Site Request Forgery (CSRF) vulnerability Cross-Site Request Forgery (CSRF) vulnerability discovered by Jerome Bruandet (NinTechNet) in WordPress Event Espresso 4 Decaf plugin (versions <= 4.10.12.decaf).
Affected versions
max 4.10.14.
Status
vulnerable